Novell.GroupWise.HTTP.Interfaces.Arbitrary.File.Retrieval
Description
This indicates an attack attempt against a Directory Traversal vulnerability in the HTTP interface of Novell GroupWise Post Office Agent, Message Transfer Agent and Internet Agent.
The vulnerability is caused by an design error when the vulnerability software handles a crafted HTTP request. A remote attacker can exploit this to gain unauthorized access to sensitive information.
Affected Products
Novell GroupWise Internet Agent 8.0.2 and prior
Novell GroupWise Message Transfer Agent 8.0.2 and prior
Novell GroupWise Post Office Agent 8.0.2 and prior
Impact
Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
http://download.novell.com/Download?buildid=O5hTjIiMdMo~
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |